A CASE tool to support automated modelling and analysis of security requirements

Book chapter

Pavlidis, Michalis, Islam, S. and Mouratidis, Haralambos 2012. A CASE tool to support automated modelling and analysis of security requirements. in: IS Olympics: Information Systems in a Diverse World Springer.

Secure Tropos, an extension of the Tropos methodology, considers security requirements alongside functional requirements, from the early stages of the system development process. The Secure Tropos language uses security concepts such as security constraint, secure goal, secure plan, secure resource, and threat to capture the security concepts from both social and organisational settings. These concepts are used to model and reason about security for a specific system context. This paper presents a CASE tool, called SecTro, which supports automated modelling and analysis of security requirements based on Secure Tropos. The tool’s architecture, layout, and functionalities are demonstrated through a real world example using the Secure Tropos concepts.